Question: Sally created a health tracking webapp, however, the application session timeouts weren't set correctly. A user, Bob, used a public computer to access the application
Sally created a health tracking webapp, however, the application session timeouts weren't set correctly. A user, Bob, used a public computer to access the application viewing his personal health data via the browser. Instead of selecting "logout," Bob simply closed the browser tab and walked away. Matta, the attacker, uses the same machine and the same browser after Bob left, brings up the browser's history and go to Bob's health app to find out that Bob is s still authenticated.nNow Matta has all Bobs' info and can performs different kinds of attacks like DoS.
Step by Step Solution
There are 3 Steps involved in it
1 Expert Approved Answer
Step: 1 Unlock
Question Has Been Solved by an Expert!
Get step-by-step solutions from verified subject matter experts
Step: 2 Unlock
Step: 3 Unlock
